Do you use passwordless authentication or what?


My Computer My Computer

At a glance

Home26H2CanAMD Ryzen 5 8600G (07/24)2x32GB Kingston FURY DDR5 5600 MHz CL36 @5200...ASROCK Radeon RX 6600 Challenger D 8G @48FPS ...
OS
Home26H2Can
Computer type
PC/Desktop
CPU
AMD Ryzen 5 8600G (07/24)
Motherboard
ASROCK B650M-HDV/M.2 (07/24) BIOS 4.21 AGESA ComboAM5 1.3.0.1 (04/26)
Memory
2x32GB Kingston FURY DDR5 5600 MHz CL36 @5200 CL36 (07/24)
Graphics Card(s)
ASROCK Radeon RX 6600 Challenger D 8G @48FPS (08/24)
Sound Card
Creative Sound BlasterX AE-5 Plus (05/24)
Monitor(s) Displays
24" Philips 24M1N3200ZS/00 (05/24)
Screen Resolution
1920×1080@165Hz via DP1.4
Hard Drives
Kingston KC3000 NVMe 2TB (05/24)
ADATA XPG GAMMIX S11 Pro 512GB (07/19)
PSU
Seasonic Core GM 550 Gold (04/24)
Case
Fractal Design Define 7 Mini with 3x Noctua NF-P14s/12@555rpm (04/24)
Cooling
Noctua NH-U12S with Noctua NF-P12 (04/24)
Keyboard
HP Pavilion Wired Keyboard 300 (07/24) + Rabalux 76017 Parker (01/24)
Mouse
Logitech M330 Silent Plus (01/26)
Internet Speed
500/100 Mbps via RouterOS (05/21) & TCP Optimizer
Browser
Edge, Brave for YouTube, LibreWolf for FB
Antivirus
NextDNS blocking 1/3 Traffic
Other Info
Phone: Motorola Moto G86 (02/26)
Backup: Hasleo Backup Suite (PreOS)
Headphones: Sennheiser RS170 (09/10)
Chair: Huzaro Force 4.4 Grey Mesh (05/24)
Notifier: Xiaomi Mi Band 9 Milanese (10/24)
FlexCore USB-C 3.2 Gen 1 (M) to LAN (F) (08/25)

My Computer My Computer

At a glance

windows 11 Pro11th Gen Intel(R) Core(TM) i7-11800H @ 2.30GH...16 GBNVIDIA GeForce RTX 3050 Ti
OS
windows 11 Pro
Computer type
Laptop
Manufacturer/Model
Dell XPS 15 9510
CPU
11th Gen Intel(R) Core(TM) i7-11800H @ 2.30GHz (16 CPUs
Memory
16 GB
Graphics Card(s)
NVIDIA GeForce RTX 3050 Ti
Hard Drives
512GB Solid State Drive
Browser
Firefox
When I log in to any place that requires a password, I use one, but it's 18 characters long and beyond guesswork.
Then I keep the malware off of my PC, so I'm not worried about that.

Stay safe, Mates!
TM :cool:
 
That article is six years old, do you consider it still applies?
I personally believe that having some form of two-factor authentication (2FA) is better than having no additional protection apart from your password. Without your password, unauthorized individuals cannot log in to your account. However, if someone gains access to your password and you have no 2FA in place, they can immediately gain entry. Because there are issues with SMS-based 2FA, it is advisable to consider alternative methods when available. Here's another recent article, from Kaspersky, also saying that it can work as 2FA: Types of two-factor authentication: pros and cons
Summary: this two-factor authentication option gets the job done, but to protect the most valuable accounts — especially those related to finances — it’s better to use something more reliable.

One reason not to rely on SMS-based 2FA is that it can give you a false sense of security. If you consider an account important and should exercise extra caution, you might be more attentive with a strong password and good security practices without 2FA. Treating SMS 2FA as a sufficient measure might lead to complacency, and this can leave you vulnerable since hackers are highly motivated to exploit weaknesses, unlike the less important accounts.

Personally, if there are no other options available and I have access to 2FA recovery codes, I would enable SMS 2FA. However, this is purely hypothetical for me since the only account I might enable this option for does not offer any recovery codes (or alternative 2FAs I can use). Therefore, I must choose between SMS 2FA alone or no 2FA, and in this case, I choose not to use it.
 
Last edited:

My Computer My Computer

At a glance

Windows 11 Pro 25H2
OS
Windows 11 Pro 25H2
Computer type
PC/Desktop
All accounts have 20 character random generated passwords.
The Master Password is 32 characters.
Doesn't inspire much confidence when all your 20 character passwords are just a notepad away to the prying eyes. Depends, of course on the odds of someone/something mucking about your TEMP directory.


2023-07-02 16_24_28-.png



In case it's still unclear, the DerTxsNm.part is a failed export of your plain-text Password Vault. A successful export will only differ by the .csv extension. This particular screenshot has only one. At one time I've had five or six such failed vault dumps in the Temp Dir, back when a Vault-export failure was rampant. Don't know if things have changed because I have since switched.

When I brought it to their attention, the lame (indirect) suggestion was to switch browsers (Chrome apparently is their Go-To with Out-of-the-box support). I even made a suggestion (to the support) to give us users the option of exporting the Vault to an encrypted destination of our choosing, but it fell on deaf ears.

Either way, the fact that the export operation writes (in plain-text) to the Temp Dir before moving it to the user-selected location is plain censored. And, it's also around the time when they took away the option of exporting an Encrypted Vault.
 

My Computer My Computer

At a glance

Windows 10
OS
Windows 10
That is another extreme, "too much" security. What is your recovery strategy?
I don't see a risk of losing access to my smartcard, since I keep the PUK in a safe place. Even if I lose my SmartCard: the identities can be written to a new Smartcard by the CA admin. So there is absolutely no way to lose access to for example my keepass file unless it gets corrupted (and I have backups) or our whole Active directory goes down for good the same day I lose my SmartCard.
 

My Computer My Computer

At a glance

Win11
OS
Win11
Any method one chooses to use for extra protection is better than only typing in passwords. Rather than disclose the exact method I use, my opinion on what is the best method of protection would be biometrics using a fingerprint + a password manager. It all depends on one having biometrics available on his device. Is this method 100% secure. No, but then nothing is on the internet these days and people should accept that fact.

Bottom line on how far one should take it, IMO it boils down to 3 things; how one uses his devices to access sensitive information (think willy-nilly logging in from multiple devices which allows hackers multiple means of getting to you) , how much common sense one uses in his computing habits , and how paranoid one is. There is no 'one size fits all'.
 

My Computers My Computers

  • At a glance

    Windows 11 Pro 25H2 26200.8655i9-10900 10 core 20 threads32 gbnone-Intel UHD Graphics 630
    OS
    Windows 11 Pro 25H2 26200.8655
    Computer type
    PC/Desktop
    Manufacturer/Model
    Dell Optiplex 7080
    CPU
    i9-10900 10 core 20 threads
    Motherboard
    DELL 0J37VM
    Memory
    32 gb
    Graphics Card(s)
    none-Intel UHD Graphics 630
    Sound Card
    Integrated Realtek
    Monitor(s) Displays
    Benq 27
    Screen Resolution
    2560x1440
    Hard Drives
    2x1tb Solidigm m.2 nvme /External drives 512gb Samsung m.2 sata+2tb Kingston m2.nvme
    PSU
    500w
    Case
    MT
    Cooling
    Dell Premium
    Keyboard
    Logitech wired
    Mouse
    Logitech wireless
    Internet Speed
    so slow I'm too embarrassed to tell
    Browser
    #1 Edge #2 Firefox
    Antivirus
    Defender+MWB Premium
  • At a glance

    Windows 11 Pro 24H2 26200.8457AMD Ryzen 7 6800U32 gbintegrated
    Operating System
    Windows 11 Pro 24H2 26200.8457
    Computer type
    PC/Desktop
    Manufacturer/Model
    Beelink Mini PC SER5
    CPU
    AMD Ryzen 7 6800U
    Memory
    32 gb
    Graphics card(s)
    integrated
    Sound Card
    integrated
    Monitor(s) Displays
    Benq 27
    Screen Resolution
    2560x1440
    Hard Drives
    1TB Crucial nvme
    Keyboard
    Logitech wired
    Mouse
    Logitech wireless
    Internet Speed
    still too embarrassed to tell
    Browser
    Firefox
    Antivirus
    Defender
    Other Info
    System 3 is non compliant Dell 9020 i7-4770/24gb ram Win11 PRO 26200.8457
My sign in and password combination was leaked several times on the dark web due to hacks. One day I checked my sign in history in microsoft account and noticed like 25 failed sign in attempts from around the world every day. Luckily I had 2 factor. I went ahead and turned on passwordless sign in with microsoft authenticator.
 

My Computer My Computer

At a glance

11 Pro1255U 12th Gen i716GB RamIntel XE
OS
11 Pro
Computer type
Laptop
Manufacturer/Model
Surface Laptop 5
CPU
1255U 12th Gen i7
Memory
16GB Ram
Graphics Card(s)
Intel XE
Hard Drives
512 SSD
Curious to know how people here prefer to login and authenticate to keystuff like your bank account and other internet based resources such as online retailers.

State briefly what you use and optionally why it works for you.

I use passwordless via Windows Hello (facial recognition) when available.
MFA or an authenticator app (in my phone) when facial recognition isn't available.
I use LastPass to manage my passwords ( all critical logins have very long gobbledygook passwords).
I don't have allot of sites that I have to log into.
Gmail, here , and the bank.
Use SMS whenever possible and when I have to enter a password, I have Keyscrambler from QFX software
installed.
I also have and always had the camera and bluetooth drivers uninstalled on all notebooks. Also, WiFi is disabled on
my router. Prefer connected.
I use a phone as it was intended to be used, for conversation. Don't need to take pictures. My phone is about
14 years old and is a Nokia slidephone. Don't know if it could be hacked but really, they would not find much.
Don't even keep a record of any phone # on it. Will have to change because 3G is almost out of time. I know
the US is not covering that network anymore but here, we can still access it so, for the time being, this is what I will
be using.

 

Attachments

  • CropperCapture[45].jpg
    CropperCapture[45].jpg
    18.4 KB · Views: 3

My Computers My Computers

  • At a glance

    windows 11 22631.5039Core i9 12th gen 12900HK 2.9 MHz (overcloked:...32 Gigs DDR5-4800nVidia RTX 3070 Ti / 8 Gigs DDR6
    OS
    windows 11 22631.5039
    Computer type
    Laptop
    Manufacturer/Model
    MSI Raider GE76
    CPU
    Core i9 12th gen 12900HK 2.9 MHz (overcloked: 3890.48)
    Motherboard
    MSI
    Memory
    32 Gigs DDR5-4800
    Graphics Card(s)
    nVidia RTX 3070 Ti / 8 Gigs DDR6
    Sound Card
    DYNAUDIO - Steelsries Arena 7- Sound Effects by Nahimic 3
    Monitor(s) Displays
    17.3" 1920 x 1080 360 Hz 3 ms, IPS / Connected to MSI 32 inch curved @ 165 Hz
    Screen Resolution
    1920 x 1080 / Both
    Hard Drives
    Samsung 990 Pro 2TB (OS) - Solidigm P41 2TB (Storage)
    PSU
    280 watts
    Case
    MSI GE series
    Cooling
    internal
    Keyboard
    Steelseries
    Mouse
    G903 Lightspeed
    Internet Speed
    1000 Mbps
    Browser
    Firefox / Opera GX- Do not like Edge
    Antivirus
    Malwarebytes'
    Other Info
    just ask.
  • At a glance

    Windows 10 22H2Intel Core i7 7820HK 2.9 Ghz16 Gigs DDR4 2400 MhznVidia 1070 8GB RAM
    Operating System
    Windows 10 22H2
    Computer type
    Laptop
    Manufacturer/Model
    MSI GT73 7RE VR Titan
    CPU
    Intel Core i7 7820HK 2.9 Ghz
    Motherboard
    MSI
    Memory
    16 Gigs DDR4 2400 Mhz
    Graphics card(s)
    nVidia 1070 8GB RAM
    Sound Card
    DYNAUDIO / Nahimic 2
    Monitor(s) Displays
    IPS / 120HZ
    Screen Resolution
    1920x1080P
    Hard Drives
    Samsung NVME EVO 970 1TB / Samsung SSD (SATA) 1TB
    PSU
    240 watts
    Case
    MSI
    Cooling
    Internal
    Keyboard
    Steelseries
    Mouse
    Logitech G903 Lightspeed
    Internet Speed
    1 Gb/s
    Browser
    Firefox / Vivaldi
    Antivirus
    MalwareBytes'
    Other Info
    none.
My sign in and password combination was leaked several times on the dark web due to hacks. One day I checked my sign in history in microsoft account and noticed like 25 failed sign in attempts from around the world every day. Luckily I had 2 factor. I went ahead and turned on passwordless sign in with microsoft authenticator.
Technically, passwordless sign in with MS authenticator is just 1 factor, you will get only 1 prompt on a verified device.
If someone manages to steal your session, you are done for it. You might consider changing your primary sign-in.
Code:
https://account.live.com/SignInPreferences
 

My Computer My Computer

At a glance

Home26H2CanAMD Ryzen 5 8600G (07/24)2x32GB Kingston FURY DDR5 5600 MHz CL36 @5200...ASROCK Radeon RX 6600 Challenger D 8G @48FPS ...
OS
Home26H2Can
Computer type
PC/Desktop
CPU
AMD Ryzen 5 8600G (07/24)
Motherboard
ASROCK B650M-HDV/M.2 (07/24) BIOS 4.21 AGESA ComboAM5 1.3.0.1 (04/26)
Memory
2x32GB Kingston FURY DDR5 5600 MHz CL36 @5200 CL36 (07/24)
Graphics Card(s)
ASROCK Radeon RX 6600 Challenger D 8G @48FPS (08/24)
Sound Card
Creative Sound BlasterX AE-5 Plus (05/24)
Monitor(s) Displays
24" Philips 24M1N3200ZS/00 (05/24)
Screen Resolution
1920×1080@165Hz via DP1.4
Hard Drives
Kingston KC3000 NVMe 2TB (05/24)
ADATA XPG GAMMIX S11 Pro 512GB (07/19)
PSU
Seasonic Core GM 550 Gold (04/24)
Case
Fractal Design Define 7 Mini with 3x Noctua NF-P14s/12@555rpm (04/24)
Cooling
Noctua NH-U12S with Noctua NF-P12 (04/24)
Keyboard
HP Pavilion Wired Keyboard 300 (07/24) + Rabalux 76017 Parker (01/24)
Mouse
Logitech M330 Silent Plus (01/26)
Internet Speed
500/100 Mbps via RouterOS (05/21) & TCP Optimizer
Browser
Edge, Brave for YouTube, LibreWolf for FB
Antivirus
NextDNS blocking 1/3 Traffic
Other Info
Phone: Motorola Moto G86 (02/26)
Backup: Hasleo Backup Suite (PreOS)
Headphones: Sennheiser RS170 (09/10)
Chair: Huzaro Force 4.4 Grey Mesh (05/24)
Notifier: Xiaomi Mi Band 9 Milanese (10/24)
FlexCore USB-C 3.2 Gen 1 (M) to LAN (F) (08/25)
Thanks, I will make sure I have 2 factor on.
 

My Computer My Computer

At a glance

11 Pro1255U 12th Gen i716GB RamIntel XE
OS
11 Pro
Computer type
Laptop
Manufacturer/Model
Surface Laptop 5
CPU
1255U 12th Gen i7
Memory
16GB Ram
Graphics Card(s)
Intel XE
Hard Drives
512 SSD
Back
Top Bottom